First published: Tue May 03 2011(Updated: )
dbus_backend/lsd.py in the D-Bus backend in language-selector before 0.6.7 does not validate the arguments to the (1) SetSystemDefaultLangEnv and (2) SetSystemDefaultLanguageEnv functions, which allows local users to gain privileges via shell metacharacters in a string argument, a different vulnerability than CVE-2011-0729.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ubuntu Language Selector | =0.4.2.3 | |
Ubuntu Language Selector | =0.2.1 | |
Ubuntu Language Selector | =0.0\+baz20050926 | |
Ubuntu Language Selector | =0.6.1 | |
Ubuntu Language Selector | =0.1.12 | |
Ubuntu Language Selector | =0.4.8 | |
Ubuntu Language Selector | =0.2.2 | |
Ubuntu Language Selector | =0.4.2.1 | |
Ubuntu Language Selector | =0.0\+baz20050531 | |
Ubuntu Language Selector | =0.0\+baz20050912 | |
Ubuntu Language Selector | =0.1.2 | |
Ubuntu Language Selector | =0.5.7 | |
Ubuntu Language Selector | =0.3.20 | |
Ubuntu Language Selector | =0.0\+baz20050808 | |
Ubuntu Language Selector | =0.0\+baz20050819 | |
Ubuntu Language Selector | =0.5.0 | |
Ubuntu Language Selector | =0.2.10 | |
Ubuntu Language Selector | =0.0\+baz20050819.2 | |
Ubuntu Language Selector | =0.1.30 | |
Ubuntu Language Selector | =0.3.7 | |
Ubuntu Language Selector | =0.6.3 | |
Ubuntu Language Selector | =0.3.4 | |
Ubuntu Language Selector | =0.2.6 | |
Ubuntu Language Selector | =0.3.5 | |
Ubuntu Language Selector | =0.5.6 | |
Ubuntu Language Selector | =0.1.18 | |
Ubuntu Language Selector | =0.1.6 | |
Ubuntu Language Selector | =0.1.16 | |
Ubuntu Language Selector | =0.3.9 | |
Ubuntu Language Selector | =0.4.13 | |
Ubuntu Language Selector | =0.4.5 | |
Ubuntu Language Selector | =0.1 | |
Ubuntu Language Selector | =0.6.2 | |
Ubuntu Language Selector | =0.6.0 | |
Ubuntu Language Selector | =0.1.26 | |
Ubuntu Language Selector | =0.1.7 | |
Ubuntu Language Selector | =0.3.17 | |
Ubuntu Language Selector | =0.1.28 | |
Ubuntu Language Selector | =0.4.11 | |
Ubuntu Language Selector | =0.0\+baz20050822 | |
Ubuntu Language Selector | =0.1.1 | |
Ubuntu Language Selector | =0.3.16 | |
Ubuntu Language Selector | =0.1.17 | |
Ubuntu Language Selector | =0.3.1 | |
Ubuntu Language Selector | =0.4.3 | |
Ubuntu Language Selector | =0.3.12 | |
Ubuntu Language Selector | =0.1.20 | |
Ubuntu Language Selector | =0.1.3 | |
Ubuntu Language Selector | =0.2.3 | |
Ubuntu Language Selector | =0.1.21 | |
Ubuntu Language Selector | =0.0\+baz20050614 | |
Ubuntu Language Selector | =0.4.2 | |
Ubuntu Language Selector | =0.3.0 | |
Ubuntu Language Selector | =0.3.11 | |
Ubuntu Language Selector | =0.1.29 | |
Ubuntu Language Selector | =0.1.8 | |
Ubuntu Language Selector | =0.1.5 | |
Ubuntu Language Selector | =0.4.18 | |
Ubuntu Language Selector | =0.2.9 | |
Ubuntu Language Selector | =0.4.7 | |
Ubuntu Language Selector | =0.4.0 | |
Ubuntu Language Selector | =0.2.0 | |
Ubuntu Language Selector | =0.5.1 | |
Ubuntu Language Selector | =0.4.12 | |
Ubuntu Language Selector | =0.3.6 | |
Ubuntu Language Selector | =0.4.15 | |
Ubuntu Language Selector | =0.1.15 | |
Ubuntu Language Selector | =0.2.8 | |
Ubuntu Language Selector | =0.4.16 | |
Ubuntu Language Selector | =0.4.19 | |
Ubuntu Language Selector | =0.3.21 | |
Ubuntu Language Selector | =0.5.4 | |
Ubuntu Language Selector | =0.0\+baz20050609 | |
Ubuntu Language Selector | =0.1.11 | |
Ubuntu Language Selector | =0.4.10 | |
Ubuntu Language Selector | =0.4.9 | |
Ubuntu Language Selector | =0.1.13 | |
Ubuntu Language Selector | =0.0\+baz20050824 | |
Ubuntu Language Selector | =0.3.13 | |
Ubuntu Language Selector | =0.4.2.2 | |
Ubuntu Language Selector | =0.1.23 | |
Ubuntu Language Selector | =0.1.4 | |
Ubuntu Language Selector | =0.2.4 | |
Ubuntu Language Selector | =0.4.4 | |
Ubuntu Language Selector | =0.1.10 | |
Ubuntu Language Selector | =0.2.7 | |
Ubuntu Language Selector | =0.4.1 | |
Ubuntu Language Selector | =0.1.22 | |
Ubuntu Language Selector | =0.1.14 | |
Ubuntu Language Selector | =0.3.3 | |
Ubuntu Language Selector | =0.0\+baz20050927 | |
Ubuntu Language Selector | =0.1.24 | |
Ubuntu Language Selector | =0.0\+baz20050823 | |
Ubuntu Language Selector | =0.5.2 | |
Ubuntu Language Selector | =0.3.15 | |
Ubuntu Language Selector | =0.3.8 | |
Ubuntu Language Selector | =0.3.10 | |
Ubuntu Language Selector | =0.6.4 | |
Ubuntu Language Selector | =0.1.25 | |
Ubuntu Language Selector | <=0.6.6 | |
Ubuntu Language Selector | =0.4.14 | |
Ubuntu Language Selector | =0.1.9 | |
Ubuntu Language Selector | =0.1.27 | |
Ubuntu Language Selector | =0.0\+baz20050811 | |
Ubuntu Language Selector | =0.3.14 | |
Ubuntu Language Selector | =0.5.3 | |
Ubuntu Language Selector | =0.4.6 | |
Ubuntu Language Selector | =0.5.5 | |
Ubuntu Language Selector | =0.2.5 | |
Ubuntu Language Selector | =0.6.5 | |
Ubuntu Language Selector | =0.1.19 | |
Ubuntu Language Selector | =0.3.2 | |
Ubuntu Language Selector | =0.4.17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1842 is rated as medium severity due to its potential for privilege escalation.
To remediate CVE-2011-1842, upgrade the language-selector package to version 0.6.7 or later.
CVE-2011-1842 affects multiple versions of the Ubuntu language-selector package prior to version 0.6.7.
Exploitation of CVE-2011-1842 allows local users to execute arbitrary code with elevated privileges.
Yes, CVE-2011-1842 is a known vulnerability identified in various versions of Ubuntu's language-selector software.